Additional scan result of Farbar Recovery Scan Tool (x64) Version: 04-11-2014 Ran by Jakub at 2014-11-05 16:13:07 Running from D:\Torrenty Boot Mode: Normal ========================================================== ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) µTorrent (HKCU\...\uTorrent) (Version: 3.4.2.34944 - BitTorrent Inc.) Ad Muncher v4.93.33707 (HKLM-x32\...\Ad Muncher) (Version: - ) Adobe Flash Player 15 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 15.0.0.189 - Adobe Systems Incorporated) Adobe Photoshop CC 2014 (HKLM-x32\...\{D7A4F897-B20A-42D0-862D-CB5F6DB7391D}) (Version: 15.0 - Adobe Systems Incorporated) AIMP3 (HKLM-x32\...\AIMP3) (Version: v3.55.1355, 14.07.2014 - AIMP DevTeam) Aktualizacje NVIDIA 16.13.56 (Version: 16.13.56 - NVIDIA Corporation) Hidden Alan Wake (HKLM-x32\...\GOGPACKALANWAKE_is1) (Version: 2.0.0.18 - GOG.com) Alien Swarm (HKLM-x32\...\Steam App 630) (Version: - Valve) Audacity 2.0.5 (HKLM-x32\...\Audacity_is1) (Version: 2.0.5 - Audacity Team) AVG PC TuneUp 2014 (HKLM-x32\...\AVG PC TuneUp) (Version: 14.0.1001.519 - AVG) AVG PC TuneUp 2014 (pl-PL) (x32 Version: 14.0.1001.519 - AVG) Hidden AVG PC TuneUp 2014 (x32 Version: 14.0.1001.519 - AVG) Hidden Battlefield 3™ (HKLM-x32\...\{76285C16-411A-488A-BCE3-C83CB933D8CF}) (Version: 1.6.0.0 - Electronic Arts) BitRaider Web Client (HKLM-x32\...\BitRaider Web Client) (Version: 1.1.9.9 - BitRaider, LLC) Camtasia Studio 8 (HKLM-x32\...\{3F3A5785-81E3-4065-B643-B4933790AE1E}) (Version: 8.1.1.1313 - TechSmith Corporation) Counter-Strike: Global Offensive (HKLM-x32\...\Steam App 730) (Version: - Valve) Dogfight 1942 (HKLM-x32\...\Steam App 217790) (Version: - City Interactive) DWA-127 (HKLM-x32\...\{E6F2D638-0846-46B6-8669-3CE08AFF3362}) (Version: 1.0.0.0 - D-Link CORPORATION) Dxtory version 2.0.127 (HKLM-x32\...\Dxtory2.0_is1) (Version: 2.0.127 - ExKode Co. Ltd.) EA SPORTS™ FIFA 15 (HKLM-x32\...\{3D4ADA2B-F028-4307-ADF4-6F9AA44725DA}) (Version: 1.3.0.0 - Electronic Arts) Euro Truck Simulator 2 Multiplayer 0.1.0.8.4 Alpha (HKLM-x32\...\{A227B892-C548-4490-9C5D-DB341F8194A6}_is1) (Version: 0.1.0.8.4 Alpha - ETS2MP Team) Football Manager 2014 (HKLM-x32\...\Rm9vdGJhbGxNYW5hZ2VyMjAxNA==_is1) (Version: 1 - ) Game Dev Tycoon wersja 1.4.16 (HKLM-x32\...\{BAAB62B3-52E6-4478-BE93-46AC955300FE}_is1) (Version: 1.4.16 - ) GIMP 2.8.14 (HKLM\...\GIMP-2_is1) (Version: 2.8.14 - The GIMP Team) GRID Autosport (HKLM-x32\...\R1JJREF1dG9zcG9ydA==_is1) (Version: 1 - ) Gun Monkeys (HKLM-x32\...\Steam App 239450) (Version: - Size Five Games) Hitman Absolution - Professional Edition (HKLM-x32\...\Hitman Absolution - Professional Edition_is1) (Version: - ) Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 10.0.1.1000 - Intel Corporation) Intel(R) Smart Connect Technology (HKLM\...\{D71C9F27-DBF6-4F02-B9D3-99624993A9B1}) (Version: 5.0.10.2793 - Intel Corporation) Intel(R) Update Manager (HKLM-x32\...\{12914061-EB9B-4AE7-AC7E-0B8A607C7DF4}) (Version: 2.3.1338 - Intel Corporation) IrfanView (remove only) (HKLM-x32\...\IrfanView) (Version: 4.37 - Irfan Skiljan) Java 7 Update 65 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F03217065FF}) (Version: 7.0.650 - Oracle) Light Alloy 4.7.8 (build 1196) (HKLM-x32\...\Light Alloy) (Version: 4.7.8 (build 1196) - ) LogMeIn Hamachi (HKLM-x32\...\LogMeIn Hamachi) (Version: 2.2.0.236 - LogMeIn, Inc.) LogMeIn Hamachi (x32 Version: 2.2.0.236 - LogMeIn, Inc.) Hidden Microsoft Office Professional Plus 2013 (HKLM\...\Office15.PROPLUS) (Version: 15.0.4569.1506 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{f45b48a7-f616-4211-b927-17cab6a96613}) (Version: 8.0.58298 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft XNA Framework Redistributable 4.0 (HKLM-x32\...\{2BFC7AA0-544C-4E3A-8796-67F3BE655BE9}) (Version: 4.0.20823.0 - Microsoft Corporation) MotioninJoy Gamepad tool 0.7.1001 (HKLM\...\{330DAC67-5B62-452A-A0E4-6B4A5923940F}_is1) (Version: 0.7.1001 - www.motioninjoy.com) Mount & Blade: Warband (HKLM-x32\...\Steam App 48700) (Version: - TaleWorlds Entertainment) Mozilla Firefox 33.0.2 (x86 pl) (HKLM-x32\...\Mozilla Firefox 33.0.2 (x86 pl)) (Version: 33.0.2 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 29.0.1 - Mozilla) MSI Command Center (HKLM-x32\...\{85A2564E-9ED9-448A-91E4-B9211EE58A08}_is1) (Version: 1.0.0.79 - MSI) MSI ECO Center (HKLM-x32\...\{1E55202F-4D31-498A-8F72-97DCBA9F2866}_is1) (Version: 1.0.0.13 - MSI) MSI Fast Boot (HKLM-x32\...\{0F212E7A-65EB-4668-A8D7-749026A64F8E}_is1) (Version: 1.0.1.3 - MSI) MSI GamingApp (HKLM-x32\...\{E0229316-E73B-484B-B9E0-45098AB38D8C}}_is1) (Version: 1.0.0.13 - MSI) MSI Intel Extreme Tuning Utility (HKLM-x32\...\{56351c83-306c-4135-a570-2784d3025548}) (Version: 5.1.0.101 - Intel Corporation) MSI Intel Extreme Tuning Utility (x32 Version: 5.1.0.101 - Intel Corporation) Hidden MSI Live Update (HKLM-x32\...\{4F46CF54-47D2-41F4-B230-B0954C544420}}_is1) (Version: 6.0.009 - MSI) MSI Smart Utilities (HKLM-x32\...\{009E5DF2-3F97-480B-89DA-F2D5E672E14A}_is1) (Version: 2.0.0.06 - MSI) MSI Super Charger (HKLM-x32\...\{7CDF10DD-A9B5-4DA3-AB95-E193248D4369}_is1) (Version: 1.2.025 - MSI) Narzędzia sprawdzające pakietu Microsoft Office 2013 — polski (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden NetworkGenie (HKLM-x32\...\{B416A23D-C2BD-4956-8BAE-5C3BAFF1AC1E}) (Version: 1.0.0.8 - MSI) NVIDIA GeForce Experience 2.1.3 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.1.3 - NVIDIA Corporation) NVIDIA Oprogramowanie systemu PhysX 9.14.0702 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.14.0702 - NVIDIA Corporation) NVIDIA Sterownik 3D Vision 344.48 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 344.48 - NVIDIA Corporation) NVIDIA Sterownik dźwięku HD 1.3.32.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.32.1 - NVIDIA Corporation) NVIDIA Sterownik graficzny 344.48 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 344.48 - NVIDIA Corporation) NVIDIA Sterownik kontrolera 3D Vision 344.46 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 344.46 - NVIDIA Corporation) NVIDIA Wirtualny dźwięk Miracast 344.48 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Miracast.VirtualAudio) (Version: 344.48 - NVIDIA Corporation) O&O CleverCache (HKLM\...\{2A64B9EB-AAEF-462B-8D5A-855B1DD5467A}) (Version: 7.1.2787 - O&O Software GmbH) O&O Defrag Professional (HKLM\...\{3A59346C-DE9E-4F25-BDEE-F8229A2AF582}) (Version: 17.5.559 - O&O Software GmbH) Ogniem i Mieczem - Dzikie Pola (HKLM-x32\...\{7AF3F3BB-60F5-4326-AE21-8D852D537764}) (Version: 1.143 - TaleWorlds Entertainment) Open Broadcaster Software (HKLM-x32\...\Open Broadcaster Software) (Version: - ) OpenAL 1.1 Core PC SDK (ver 3.05) (HKLM-x32\...\InstallShield_{1C10D0D6-AF1A-48B8-9BF7-52A2BB014E0C}) (Version: 3.05 - Creative Labs) OpenAL 1.1 Core PC SDK (ver 3.05) (x32 Version: 3.05 - Creative Labs) Hidden Oprogramowanie mikroukładu Intel® (x32 Version: 10.0.20 - Intel(R) Corporation) Hidden Origin (HKLM-x32\...\Origin) (Version: 9.4.11.2806 - Electronic Arts, Inc.) Panel sterowania NVIDIA 344.48 (Version: 344.48 - NVIDIA Corporation) Hidden PDF-Viewer (HKLM\...\{A278382D-4F1B-4D47-9885-8523F7261E8D}_is1) (Version: 2.5.200.0 - Tracker Software Products Ltd) Peggle (HKLM-x32\...\{715AD72D-887A-459E-988B-D4F3E87FA24B}) (Version: 1.04.0.0 - PopCap Games) PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.991 - Even Balance, Inc.) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 8.23.1126.2013 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7293 - Realtek Semiconductor Corp.) Rust (HKLM-x32\...\Steam App 252490) (Version: - Facepunch Studios) SHIELD Streaming (Version: 3.1.1000 - NVIDIA Corporation) Hidden SHIELD Wireless Controller Driver (Version: 16.13.56 - NVIDIA Corporation) Hidden Spotify (HKCU\...\Spotify) (Version: 0.9.14.13.gba5645ad - Spotify AB) Steam (HKLM-x32\...\Steam) (Version: - Valve Corporation) Stronghold Crusader HD (HKLM-x32\...\{8C3727F2-8E37-49E4-820C-03B1677F53B6}) (Version: 1.30.0001 - Firefly Studios) The Witcher 2 - Assassins of Kings Enhanced Edition (HKLM-x32\...\GOGPACKTHEWITCHER2EE_is1) (Version: 3.4.0.25 - GOG.com) Tom Clancy's Ghost Recon Phantoms - EU (HKLM-x32\...\Steam App 272350) (Version: - Ubisoft Singapore) UltraISO Premium V9.61 (HKLM-x32\...\UltraISO_is1) (Version: - ) Uplay (HKLM-x32\...\Uplay) (Version: 4.6 - Ubisoft) VGA Boost (HKLM-x32\...\{809ACFAE-9A4D-4C60-9223-D8B615CD8CBA}}_is1) (Version: 1.0.0.7 - MSI) WinRAR 5.00 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.00.0 - win.rar GmbH) WRC 4 FIA World Rally Championship (HKLM-x32\...\V1JDNEZJQVdvcmxkUmFsbHlDaGFtcGlvbnNoaXA=_is1) (Version: 1 - ) Xiph.Org Open Codecs 0.85.17777 (HKLM-x32\...\Open Codecs) (Version: 0.85.17777 - Xiph.Org) ==================== Custom CLSID (selected items): ========================== (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.) ==================== Restore Points ========================= 21-10-2014 12:08:07 Zainstalowany program DirectX 22-10-2014 16:47:38 Usunięte The Sims 3 23-10-2014 17:56:16 Zainstalowany program DirectX 26-10-2014 19:48:12 Windows Update 03-11-2014 14:47:35 Zaplanowany punkt kontrolny 04-11-2014 17:35:38 Installed OpenAL 1.1 Core PC SDK (ver 3.05) ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2014-08-25 10:15 - 2014-11-05 16:06 - 00000035 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= (If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.) Task: {0167BC6B-FCF6-4A48-AFD1-7C2221D5FA8D} - System32\Tasks\Microsoft\Windows\DiskCleanup\SilentCleanup => C:\Windows\system32\cleanmgr.exe [2014-02-22] (Microsoft Corporation) Task: {017D8756-844A-48F1-82D6-5A7C2EA5479F} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [2014-01-23] (Microsoft Corporation) Task: {05293577-D647-4185-B859-C94839A0B2E3} - System32\Tasks\Microsoft\Windows\SettingSync\NetworkStateChangeTask Task: {07407365-36AC-49F2-B321-38C412679C03} - System32\Tasks\Java Update Scheduler => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2014-07-11] (Oracle Corporation) Task: {0B545118-B563-42FC-8D07-B78F602FCF34} - System32\Tasks\Microsoft\Windows\WS\WSRefreshBannedAppsListTask => Rundll32.exe WSClient.dll,RefreshBannedAppsList Task: {152AF570-210A-445A-B43F-3AD2C41DA925} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [2014-01-23] (Microsoft Corporation) Task: {1BDFFE57-CAA1-4C9E-8F2D-018AB991F0C6} - System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start With Network => Sc.exe start wuauserv Task: {2085BF56-520D-4951-B7C0-DF34AF90CC6A} - System32\Tasks\Microsoft\Windows\Sysmain\WsSwapAssessmentTask => Rundll32.exe sysmain.dll,PfSvWsSwapAssessmentTask Task: {2861BF4A-0878-4585-8A38-820A674490BE} - System32\Tasks\RtlNetworkGenieVistaStart => C:\Program Files (x86)\MSI\NetworkGenie\NetworkGenie.exe [2014-04-23] (Realtek Semiconductor) Task: {2C9C0C6C-2A74-46F2-858A-4389D253EAD0} - System32\Tasks\Microsoft\Windows\Sysmain\HybridDriveCachePrepopulate Task: {3084D28D-B926-44DE-AFED-0AD855017304} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\Windows\system32\MRT.exe [2014-10-26] (Microsoft Corporation) Task: {352E6CA0-7314-4DF4-89C4-682368D80D57} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Workplace-Join => C:\Windows\System32\AutoWorkplace.exe [2013-08-22] (Microsoft Corporation) Task: {3B6D8A73-F20B-4C93-B8FB-56A154F172D2} - System32\Tasks\Microsoft\Windows\Time Zone\SynchronizeTimeZone => C:\Windows\system32\tzsync.exe [2013-08-22] (Microsoft Corporation) Task: {49754026-21E1-41FC-94FD-727AFE414FE7} - System32\Tasks\Microsoft\Windows\Sysmain\HybridDriveCacheRebalance Task: {58C7E304-7303-47D9-A8D3-DEE4BFD65CFA} - System32\Tasks\Microsoft\Windows\WOF\WIM-Hash-Validation Task: {6AA91E8C-DDBD-4979-8464-4062F7681A19} - System32\Tasks\Microsoft\Windows\Plug and Play\Plug and Play Cleanup Task: {6DFCB649-0769-4F83-BB10-F60F235F6D3D} - System32\Tasks\Microsoft\Windows\SkyDrive\Idle Sync Maintenance Task Task: {73B1B253-CE67-4501-AE1A-377DD1D68B65} - System32\Tasks\Microsoft\Windows\Application Experience\StartupAppTask => Rundll32.exe Startupscan.dll,SusRunTask Task: {77F1D869-6E65-4079-A2A0-E2023408EF97} - System32\Tasks\Microsoft\Windows\ApplicationData\CleanupTemporaryState => Rundll32.exe Windows.Storage.ApplicationData.dll,CleanupTemporaryState Task: {842D6D50-6837-4FBB-923B-6910CEDD92A7} - System32\Tasks\Microsoft\Windows\WOF\WIM-Hash-Management Task: {872D0E53-FD2E-41E3-B431-698AF82882CE} - System32\Tasks\Microsoft\Windows\SkyDrive\Routine Maintenance Task Task: {8CC813C9-712A-41EF-9512-B233444FC669} - System32\Tasks\Microsoft\Windows\AppxDeploymentClient\Pre-staged app cleanup => Rundll32.exe %windir%\system32\AppxDeploymentClient.dll,AppxPreStageCleanupRunTask Task: {92EA210A-7D2B-4A7E-A9DD-DBF850E41DC4} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-10-21] (Adobe Systems Incorporated) Task: {983734EA-9CDB-4122-AE82-04A7B7B7722C} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [2014-02-28] () Task: {9FF4C139-5234-410C-B7FA-23EE2FD2AB53} - System32\Tasks\Microsoft\Windows\Work Folders\Work Folders Maintenance Work Task: {CFD7C21A-808B-487B-A6EC-8A10E44E8360} - System32\Tasks\Microsoft\Windows\SettingSync\BackupTask Task: {D813CC14-7C92-4B92-9B83-048F058B2F4A} - System32\Tasks\Microsoft\Windows\Shell\FamilySafetyUpload Task: {D88FEC9E-A82A-46F9-87E2-B6B97B301C1A} - System32\Tasks\Microsoft\Windows\WS\License Validation => Rundll32.exe WSClient.dll,WSpTLR licensing Task: {DA46820F-FF8A-4B5E-A6B2-B12185DCFFFB} - System32\Tasks\Microsoft\Windows\Work Folders\Work Folders Logon Synchronization Task: {DF964BF8-9FEE-446A-925F-DCE4D655D92D} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473-Logon => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [2014-02-28] () Task: {E25D3EDF-5B78-4D9B-89CB-F7FD1A62CB23} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe [2014-01-23] (Microsoft Corporation) Task: {E6D378FA-E068-4BCB-80DE-56D43A249507} - System32\Tasks\Microsoft\Windows\RecoveryEnvironment\VerifyWinRE Task: {F2CDE300-4B85-45CF-82FC-C7AF7C672943} - System32\Tasks\Microsoft\Windows\DiskFootprint\Diagnostics Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\RtlNetworkGenieVistaStart.job => C:\Program Files (x86)\MSI\NetworkGenie\NetworkGenie.exe ==================== Loaded Modules (whitelisted) ============= 2014-07-17 21:43 - 2014-10-16 15:11 - 00116880 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2014-02-21 08:47 - 2014-02-21 08:47 - 00209712 _____ () C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe 2014-02-21 08:47 - 2014-02-21 08:47 - 00057648 _____ () C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\NetworkHeuristic.dll 2014-02-21 08:47 - 2014-02-21 08:47 - 00057648 _____ () C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\ISCTEncryptionCheck.dll 2014-02-21 08:47 - 2014-02-21 08:47 - 00037168 _____ () C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\ISCTNetMon.dll 2014-07-30 22:11 - 2014-07-31 09:34 - 00076152 _____ () C:\Windows\SysWOW64\PnkBstrA.exe 2014-07-23 09:58 - 2011-08-08 15:34 - 00217088 _____ () C:\Program Files (x86)\D-Link CORPORATION\DWA-127\WPSHWPBC.exe 2014-07-17 22:04 - 2005-07-18 12:43 - 00160256 _____ () C:\Program Files (x86)\MSI\Live Update\unrar.dll 2014-07-17 23:01 - 2014-04-30 09:15 - 01723888 _____ () C:\MSI\Smart Utilities\SuperRAIDExt.DLL 2014-08-06 12:50 - 2014-11-04 14:35 - 01007104 _____ () D:\Origin\platforms\qwindows.dll 2014-08-06 12:49 - 2014-11-04 14:35 - 00023552 _____ () D:\Origin\imageformats\qgif.dll 2014-08-06 12:49 - 2014-11-04 14:35 - 00024576 _____ () D:\Origin\imageformats\qico.dll 2014-08-06 12:49 - 2014-11-04 14:35 - 00216576 _____ () D:\Origin\imageformats\qjpeg.dll 2014-08-06 12:49 - 2014-11-04 14:35 - 00261120 _____ () D:\Origin\imageformats\qmng.dll 2014-08-06 12:49 - 2014-11-04 14:35 - 00019456 _____ () D:\Origin\imageformats\qtga.dll 2014-08-06 12:49 - 2014-11-04 14:35 - 00337408 _____ () D:\Origin\imageformats\qtiff.dll 2014-08-06 12:49 - 2014-11-04 14:35 - 00018944 _____ () D:\Origin\imageformats\qwbmp.dll 2014-11-04 14:35 - 2014-11-04 14:35 - 00060928 _____ () D:\Origin\audio\qtaudio_windows.dll 2014-08-22 10:41 - 2014-08-21 19:15 - 01171456 _____ () D:\Steam\libavcodec-56.dll 2014-08-22 10:41 - 2014-08-21 19:15 - 00332800 _____ () D:\Steam\libavresample-2.dll 2014-08-22 10:41 - 2014-08-21 19:15 - 00442368 _____ () D:\Steam\libavutil-54.dll 2014-08-06 08:39 - 2014-10-02 00:16 - 00774656 _____ () D:\Steam\SDL2.dll 2014-08-13 10:32 - 2014-11-04 21:39 - 02227904 _____ () D:\Steam\video.dll 2014-08-22 10:41 - 2014-08-21 19:15 - 00403968 _____ () D:\Steam\libavformat-56.dll 2014-08-22 10:41 - 2014-08-21 19:15 - 00485888 _____ () D:\Steam\libswscale-3.dll 2014-08-13 10:32 - 2014-11-04 21:38 - 00690368 _____ () D:\Steam\bin\chromehtml.DLL 2014-08-13 10:32 - 2014-10-27 19:53 - 34589888 _____ () D:\Steam\bin\libcef.dll 2014-04-03 15:48 - 2014-04-03 15:48 - 01241560 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll 2014-07-17 19:41 - 2014-10-31 16:44 - 03649648 _____ () C:\Program Files (x86)\Mozilla Firefox\mozjs.dll ==================== Alternate Data Streams (whitelisted) ========= (If an entry is included in the fixlist, only the Alternate Data Streams will be removed.) AlternateDataStreams: C:\Users\Jakub\OneDrive:ms-properties ==================== Safe Mode (whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Hamachi2Svc => ""="Service" ==================== EXE Association (whitelisted) ============= (If an entry is included in the fixlist, the default will be restored. None default entries will be removed.) ==================== MSCONFIG/TASK MANAGER disabled items ========= (Currently there is no automatic fix for this section.) HKLM\...\StartupApproved\Run32: => "Super Charger" HKLM\...\StartupApproved\Run32: => "Command Center" HKLM\...\StartupApproved\Run32: => "Fast Boot" HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched" HKLM\...\StartupApproved\Run32: => "LogMeIn Hamachi Ui" HKCU\...\StartupApproved\Run: => "Spotify" HKCU\...\StartupApproved\Run: => "Spotify Web Helper" ========================= Accounts: ========================== Administrator (S-1-5-21-4193634356-1386167445-2874816342-500 - Administrator - Disabled) Gość (S-1-5-21-4193634356-1386167445-2874816342-501 - Limited - Disabled) Jakub (S-1-5-21-4193634356-1386167445-2874816342-1001 - Administrator - Enabled) => C:\Users\Jakub ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (11/05/2014 04:13:23 PM) (Source: Software Protection Platform Service) (EventID: 16385) (User: ) Description: Nie można zaplanować restartu usługi ochrony oprogramowania o 2114-10-12T15:13:23Z. Kod błędu: 0x80040154. Error: (11/05/2014 04:12:53 PM) (Source: Software Protection Platform Service) (EventID: 16385) (User: ) Description: Nie można zaplanować restartu usługi ochrony oprogramowania o 2114-10-12T15:12:53Z. Kod błędu: 0x80040154. Error: (11/05/2014 04:12:23 PM) (Source: Software Protection Platform Service) (EventID: 16385) (User: ) Description: Nie można zaplanować restartu usługi ochrony oprogramowania o 2114-10-12T15:12:23Z. Kod błędu: 0x80040154. Error: (11/05/2014 04:11:53 PM) (Source: Software Protection Platform Service) (EventID: 16385) (User: ) Description: Nie można zaplanować restartu usługi ochrony oprogramowania o 2114-10-12T15:11:53Z. Kod błędu: 0x80040154. Error: (11/05/2014 04:11:23 PM) (Source: Software Protection Platform Service) (EventID: 16385) (User: ) Description: Nie można zaplanować restartu usługi ochrony oprogramowania o 2114-10-12T15:11:23Z. Kod błędu: 0x80040154. Error: (11/05/2014 04:10:53 PM) (Source: Software Protection Platform Service) (EventID: 16385) (User: ) Description: Nie można zaplanować restartu usługi ochrony oprogramowania o 2114-10-12T15:10:53Z. Kod błędu: 0x80040154. Error: (11/05/2014 04:06:54 PM) (Source: Software Protection Platform Service) (EventID: 16385) (User: ) Description: Nie można zaplanować restartu usługi ochrony oprogramowania o 2114-10-12T15:06:54Z. Kod błędu: 0x80040154. Error: (11/05/2014 04:06:24 PM) (Source: Software Protection Platform Service) (EventID: 16385) (User: ) Description: Nie można zaplanować restartu usługi ochrony oprogramowania o 2114-10-12T15:06:24Z. Kod błędu: 0x80040154. Error: (11/05/2014 04:05:54 PM) (Source: Software Protection Platform Service) (EventID: 16385) (User: ) Description: Nie można zaplanować restartu usługi ochrony oprogramowania o 2114-10-12T15:05:54Z. Kod błędu: 0x80040154. Error: (11/05/2014 04:05:24 PM) (Source: Software Protection Platform Service) (EventID: 16385) (User: ) Description: Nie można zaplanować restartu usługi ochrony oprogramowania o 2114-10-12T15:05:24Z. Kod błędu: 0x80040154. System errors: ============= Error: (11/05/2014 04:06:59 PM) (Source: Service Control Manager) (EventID: 7032) (User: ) Description: Menedżer sterowania usługami próbował podjąć akcję korekcyjną (Uruchom usługę ponownie) po nieoczekiwanym zakończeniu usługi Windows Search, ale ta akcja nie powiodła się przy następującym błędzie: %%1056. Error: (11/05/2014 04:06:29 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa Intel(R) Extreme Tuning Utility Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error: (11/05/2014 04:06:29 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa Steam Client Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error: (11/05/2014 04:06:29 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa Intel(R) Integrated Clock Controller Service - Intel(R) ICCS niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error: (11/05/2014 04:06:29 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa Intel(R) Management and Security Application Local Management Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error: (11/05/2014 04:06:29 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa Intel(R) Dynamic Application Loader Host Interface Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error: (11/05/2014 04:06:29 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa Windows Search niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 30000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error: (11/05/2014 04:06:29 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa O&O CleverCache niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error: (11/05/2014 04:06:29 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa WPSHWPBC niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error: (11/05/2014 04:06:29 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa SuperRAIDSvc niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Microsoft Office Sessions: ========================= Error: (11/05/2014 04:13:23 PM) (Source: Software Protection Platform Service) (EventID: 16385) (User: ) Description: 0x800401542114-10-12T15:13:23Z Error: (11/05/2014 04:12:53 PM) (Source: Software Protection Platform Service) (EventID: 16385) (User: ) Description: 0x800401542114-10-12T15:12:53Z Error: (11/05/2014 04:12:23 PM) (Source: Software Protection Platform Service) (EventID: 16385) (User: ) Description: 0x800401542114-10-12T15:12:23Z Error: (11/05/2014 04:11:53 PM) (Source: Software Protection Platform Service) (EventID: 16385) (User: ) Description: 0x800401542114-10-12T15:11:53Z Error: (11/05/2014 04:11:23 PM) (Source: Software Protection Platform Service) (EventID: 16385) (User: ) Description: 0x800401542114-10-12T15:11:23Z Error: (11/05/2014 04:10:53 PM) (Source: Software Protection Platform Service) (EventID: 16385) (User: ) Description: 0x800401542114-10-12T15:10:53Z Error: (11/05/2014 04:06:54 PM) (Source: Software Protection Platform Service) (EventID: 16385) (User: ) Description: 0x800401542114-10-12T15:06:54Z Error: (11/05/2014 04:06:24 PM) (Source: Software Protection Platform Service) (EventID: 16385) (User: ) Description: 0x800401542114-10-12T15:06:24Z Error: (11/05/2014 04:05:54 PM) (Source: Software Protection Platform Service) (EventID: 16385) (User: ) Description: 0x800401542114-10-12T15:05:54Z Error: (11/05/2014 04:05:24 PM) (Source: Software Protection Platform Service) (EventID: 16385) (User: ) Description: 0x800401542114-10-12T15:05:24Z CodeIntegrity Errors: =================================== Date: 2014-11-04 14:46:24.757 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Common Files\microsoft shared\OFFICE15\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2014-11-03 15:44:58.149 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Common Files\microsoft shared\OFFICE15\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2014-11-02 15:51:51.168 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Common Files\microsoft shared\OFFICE15\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2014-11-01 14:23:47.134 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Common Files\microsoft shared\OFFICE15\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2014-10-31 14:48:33.769 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Common Files\microsoft shared\OFFICE15\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2014-10-30 14:56:51.660 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Common Files\microsoft shared\OFFICE15\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2014-10-29 20:18:50.312 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Common Files\microsoft shared\OFFICE15\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2014-10-28 19:23:36.274 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Common Files\microsoft shared\OFFICE15\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2014-10-27 17:18:46.755 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Common Files\microsoft shared\OFFICE15\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2014-10-26 17:34:44.982 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Common Files\microsoft shared\OFFICE15\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. ==================== Memory info =========================== Processor: Intel(R) Core(TM) i5-4690 CPU @ 3.50GHz Percentage of memory in use: 21% Total physical RAM: 8143.91 MB Available physical RAM: 6376.54 MB Total Pagefile: 16335.91 MB Available Pagefile: 14362.98 MB Total Virtual: 131072 MB Available Virtual: 131071.82 MB ==================== Drives ================================ Drive c: (System) (Fixed) (Total:120.62 GB) (Free:76.98 GB) NTFS Drive d: (Dane) (Fixed) (Total:410.15 GB) (Free:408.7 GB) NTFS Drive f: (Gry) (Fixed) (Total:400.39 GB) (Free:198.32 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: D46E699E) Partition 1: (Active) - (Size=350 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=120.6 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=410.2 GB) - (Type=07 NTFS) Partition 4: (Not Active) - (Size=400.4 GB) - (Type=OF Extended) ==================== End Of Log ============================